Description









When handling contactless cards, usage of a specific function to get additional information from the card which doesn't
check the boundary on the data received while reading. This allows a stack-based buffer overflow that could lead to a
potential Remote Code Execution on the targeted device







Published: 2023-12-15
Score: 6.8 Medium
EPSS: 3.5% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-37392 When handling contactless cards, usage of a specific function to get additional information from the card which doesn't check the boundary on the data received while reading. This allows a stack-based buffer overflow that could lead to a potential Remote Code Execution on the targeted device
History

No history.

Subscriptions

Idemia Morphowave Compact Morphowave Compact Firmware Morphowave Sp Morphowave Sp Firmware Morphowave Xp Morphowave Xp Firmware Sigma Extreme Sigma Extreme Firmware Sigma Lite Sigma Lite\+ Sigma Lite\+ Firmware Sigma Lite Firmware Sigma Wide Sigma Wide Firmware Visionpass Visionpass Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: IDEMIA

Published:

Updated: 2024-08-02T15:39:35.827Z

Reserved: 2023-05-18T14:32:49.223Z

Link: CVE-2023-33222

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-12-15T12:15:44.130

Modified: 2024-11-21T08:05:10.250

Link: CVE-2023-33222

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses